Title :
Spot Me if You Can: Uncovering Spoken Phrases in Encrypted VoIP Conversations
Author :
Wright, Charles V. ; Ballard, Lucas ; Coull, Scott E. ; Monrose, Fabian ; Masson, Gerald M.
Author_Institution :
Dept. of Comput. Sci., Johns Hopkins Univ., Baltimore, MD
Abstract :
Despite the rapid adoption of Voice over IP (VoIP), its security implications are not yet fully understood. Since VoIP calls may traverse untrusted networks, packets should be encrypted to ensure confidentiality. However, we show that when the audio is encoded using variable bit rate codecs, the lengths of encrypted VoIP packets can be used to identify the phrases spoken within a call. Our results indicate that a passive observer can identify phrases from a standard speech corpus within encrypted calls with an average accuracy of 50%, and with accuracy greater than 90% for some phrases. Clearly, such an attack calls into question the efficacy of current VoIP encryption standards. In addition, we examine the impact of various features of the underlying audio on our performance and discuss methods for mitigation.
Keywords :
Internet telephony; audio coding; cryptography; speech codecs; speech coding; Voice over IP conversation; audio encoding; bit rate codecs; encrypted VoIP packet; uncovering spoken phrase; Bit rate; Codecs; Computer science; Computer security; Cryptography; Hidden Markov models; Internet telephony; Natural languages; Privacy; Speech; network security; traffic analysis; voice over IP;
Conference_Titel :
Security and Privacy, 2008. SP 2008. IEEE Symposium on
Conference_Location :
Oakland, CA
Print_ISBN :
978-0-7695-3168-7